FBI Warns US Companies about Iranian Hackers

Iranian hackers have searched cybercriminal websites for sensitive data stolen from American and foreign organizations that could be useful in future efforts to hack those organizations, said the FBI. (Getty Images)
Iranian hackers have searched cybercriminal websites for sensitive data stolen from American and foreign organizations that could be useful in future efforts to hack those organizations, said the FBI. (Getty Images)
TT
20

FBI Warns US Companies about Iranian Hackers

Iranian hackers have searched cybercriminal websites for sensitive data stolen from American and foreign organizations that could be useful in future efforts to hack those organizations, said the FBI. (Getty Images)
Iranian hackers have searched cybercriminal websites for sensitive data stolen from American and foreign organizations that could be useful in future efforts to hack those organizations, said the FBI. (Getty Images)

Iranian hackers have searched cybercriminal websites for sensitive data stolen from American and foreign organizations that could be useful in future efforts to hack those organizations, the FBI said in an advisory sent to US companies obtained by CNN.

The Iranian hackers have taken an interest in dark-web forums, where scammers leak information on their victims such as stolen emails and network configurations, according to the November 8 advisory. The FBI is concerned that the Iranian hacking group could use that information to plot ways into US corporate networks in the future.

Organizations at risk are advised to take mitigation measures to block hacking attempts by securing Remote Desktop Protocol (RDP) servers, Web Application Firewalls, and Kentico CMS installations targeted by this adversary, said Bleeping Computer, a cybersecurity news outlet, which was the first to report on the FBI analysis.

"Among the Tactics, Techniques, and Procedures (TTPs) used in attacks by this threat actor since May 2021, the FBI mentions the use of auto-exploiter tools used to compromise WordPress sites to deploy web shells, breaching RDP servers and using them to maintain access to victims' networks."

It is unclear which Iranian hacking group is behind the activity. The FBI did not identify the hackers by name or say if they are linked to the Iranian government.

Adam Meyers, senior vice president of intelligence at security firm CrowdStrike, told CNN that Iranian government-linked hackers have increasingly dabbled in cybercriminal activity, such as ransomware, as a means of blurring the lines between state and non-state cyber operations.

"It is well within (Iranian groups') modus operandi to purchase access to networks held by a criminal group if it serves their interests," he added.

An unnamed Iranian hacking group used similar tools to steal voter registration data from state election sites between September and October 2020, Bleeping Computer.

"That voter info was later used to impersonate the far-right Proud Boys organization and send threatening emails to Democratic voters warning that they must vote for Trump or face the consequences."

"The FBI's Cyber Division also warned in a private industry notification issued last week that ransomware gangs have compromised the networks of several tribal-owned casinos, taking down their servers and disabling connected systems."

"The same week, the federal agency also alerted the public that criminals are increasingly using cryptocurrency ATMs and QR codes for fraud, making it harder for law enforcement to recover the victims' financial losses."



Thousands Mourn Top Iranian Military Commanders, Scientists Killed in Israeli Strikes

Mourners stand next to the coffin of Revolutionary Guards commander Hossein Salami (R), and other military commanders killed during Israeli strikes on the first day of the war, during their funeral procession at Enqelab Square in the capital Tehran on June 28, 2025. (Photo by Atta KENARE / AFP)
Mourners stand next to the coffin of Revolutionary Guards commander Hossein Salami (R), and other military commanders killed during Israeli strikes on the first day of the war, during their funeral procession at Enqelab Square in the capital Tehran on June 28, 2025. (Photo by Atta KENARE / AFP)
TT
20

Thousands Mourn Top Iranian Military Commanders, Scientists Killed in Israeli Strikes

Mourners stand next to the coffin of Revolutionary Guards commander Hossein Salami (R), and other military commanders killed during Israeli strikes on the first day of the war, during their funeral procession at Enqelab Square in the capital Tehran on June 28, 2025. (Photo by Atta KENARE / AFP)
Mourners stand next to the coffin of Revolutionary Guards commander Hossein Salami (R), and other military commanders killed during Israeli strikes on the first day of the war, during their funeral procession at Enqelab Square in the capital Tehran on June 28, 2025. (Photo by Atta KENARE / AFP)

Thousands of mourners lined the streets of downtown Tehran on Saturday for the funeral of the head of the Revolutionary Guard and other top commanders and nuclear scientists killed during a 12-day war with Israel.

The caskets of Guard's chief Gen. Hossein Salami, the head of the Guard’s ballistic missile program, Gen. Amir Ali Hajizadeh and others were driven on trucks along the capital's Azadi Street.

Salami and Hajizadeh were both killed on the first day of the war, June 13, as Israel launched a war it said meant to destroy Iran's nuclear program, specifically targeting military commanders, scientists and nuclear facilities.

Over 12 days before a ceasefire was declared on Tuesday, Israel claimed it killed around 30 Iranian commanders and 11 nuclear scientists, while hitting eight nuclear-related facilities and more than 720 military infrastructure sites. More than 1,000 people were killed, including at least 417 civilians, according to the Washington-based Human Rights Activists group.

Iran fired more than 550 ballistic missiles at Israel, most of which were intercepted, but those that got through caused damage in many areas and killed 28 people.

Saturday's ceremonies were the first public funerals for top commanders since the ceasefire, and Iranian state television reported that they were for 60 people in total, including four women and four children.

Authorities closed government offices to allow public servants to attend the ceremonies.